11
Fake ‘One Battle After Another’ torrent hides malware in subtitles
(www.bleepingcomputer.com)
c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.
THE RULES
Instance Rules
Community Rules
If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.
Learn about hacking
Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub
Notable mention to !cybersecuritymemes@lemmy.world
The whole exploit is based on the user clicking on a .lnk shortcut, which then executes commands found in the subtitle text file.
Which seems strangely over complicated. How does it really help to involve the subtitles file at all?
Hiding executable code in the srt file likely evades various security software.
@aaaa if a sufficient amount of vics does exactly that it may work out (like bit error domains, or: artefact of speering vic)